עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
NEXT’s mission is to help entrepreneurs thrive. We’re doing that by building the only technology-led, full-stack provider of small business insurance in the industry, taking on the entire value chain and transforming the customer experience.
Simply put, wherever you find small businesses, you’ll find NEXT.
Since 2016, we’ve helped hundreds of thousands of small business customers across the United States get fast, customized and affordable coverage. We’re backed by industry leaders in insurance and tech, and we still have room to grow — that’s where you come in.
What You’ll Do:
- Define and drive application security strategy, roadmap, and architecture.
- Provide security expertise to engineering teams on secure design and implementation.
- Lead SSDLC processes, ensuring security is integrated at every stage.
- Drive the development and implementation of automated security testing (SAST, DAST, IAST, SCA, fuzzing).
- Conduct security design reviews, threat modeling, and application risk assessments.
- Provide vulnerability remediation guidance and mentor engineering teams.
- Develop initiatives to proactively discover security defects.
- Manage and enhance our bug bounty program.
- Integrate security into CI/CD pipelines and development workflows.
- Communicate security risks and recommendations to stakeholders.
- Champion modern application security practices (DevSecOps, IaC security, cloud-native security).
What We Need:
- 6+ years of experience in application security, with a focus on security architecture.
- 5+ years of experience in a cloud or SaaS-based production environment (AWS, Azure, GCP).
- Deep understanding of web application security, cloud security, and modern application architectures.
- Expertise in security design review, threat modeling, and application risk assessment.
- In-depth knowledge of OWASP Top 10, CWE, and relevant security standards.
- Proven experience implementing security controls in software build and CI/CD pipelines.
- Strong understanding of authentication and authorization protocols (OAuth, OpenID Connect, SAML).
- Hands-on experience with application security testing tools (SAST, DAST, IAST, SCA, fuzzing).
- Proficiency in a general-purpose programming language (e.g., Python, Java, Go).
- Experience with container security (Docker, Kubernetes) and infrastructure as code (e.g., Terraform).
- Strong leadership, communication, and collaboration skills.
Preferred Qualifications:
- Security certifications (e.g., CISSP, CSSLP, OSCP, GWEB).
- Experience with DevSecOps methodologies.
- Contributions to the security community.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
משרות נוספות מומלצות עבורך
-
Cyber Security Architect
-
תל אביב - יפו
comblack
-
-
AI Cyber Security Architect
-
לוד
א.מ.ן מחשבים בע"מ
-
-
ארכיטקט/ית אפליקטיבי אבטחת מידע
-
תל אביב - יפו
Logica-IT
-
-
ארכיטקט/ית אפליקטיבי אבטחת מידע
-
תל אביב - יפו
פרוסיד
-
-
ארכיטקט/ית אפליקטיבי אבטחת מידע
-
תל אביב - יפו
Proceed
-
-
דרוש/ה ארכיטקט/ית אפליקטיבי אבטחת מידע
-
תל אביב - יפו
קבוצת Aman
-